Skip to main content

Security Engineer, Threat Response

Asana
Hybrid - Warsaw, 3 days/week (Mon, Tue, Thu)Updated 13d ago
Base salary
$32k–$36k
Published base salary range
Location
Hybrid - Warsaw, 3 days/week (Mon, Tue, Thu)
Remote eligibility
Employment
Full-time
Senior
Role family
Security
B2B SaaS
Role skills
Apply on asana.com
Job actionsApply now
Job actionsApply now

About the job

About the Role

Asana's Security team is seeking a Security Engineer to join the Blue Team in Warsaw. This foundational role will partner with IT, infrastructure, and product teams to build robust detection and response capabilities, with a focus on automation and detection-as-code.

Responsibilities

  • Lead detection, analysis, and response across cloud and SaaS environments, identity providers, endpoints, and the software supply chain.
  • Investigate and remediate security incidents across AWS/GCP/Azure, Okta, and SaaS environments.
  • Investigate and contain software supply chain and CI/CD incidents, including unauthorized changes and suspect dependencies (npm, PyPI).
  • Build and maintain detection-as-code infrastructure (e.g., Panther), SOAR automation, and response playbooks.
  • Utilize and optimize security tools such as Panther, CrowdStrike, and other platforms.
  • Conduct proactive threat hunting and operationalize threat intelligence.
  • Perform forensic analysis during incidents.
  • Collaborate with engineering teams on security best practices and provide training.

Qualifications

  • 7+ years of experience in threat detection, security operations, or incident response.
  • Proficiency in Python (Bash, Go, or JavaScript/TypeScript a plus) for security scripting and automation.
  • Hands-on experience with REST APIs, Git workflows, and PR-based code reviews.
  • Experience investigating software supply chain threats and auditing developer ecosystems (npm, PyPI), build logs, and CI/CD pipelines.
  • Familiarity with Detection as Code methodologies and CI/CD rule management.
  • Strong experience with SIEM platforms (e.g., Panther, Splunk, Elastic Security).
  • Deep knowledge of EDR tools (e.g., CrowdStrike, SentinelOne).
  • Experience with digital forensics and root-cause analysis.
  • Familiarity with attack techniques and frameworks like MITRE ATT&CK.
  • Curiosity about AI tools and emerging technologies.

Compensation & Benefits

Estimated base salary range: 31,900 - 36,250 PLN gross per month. Additional components may include equity and benefits. Benefits include health insurance with dental and travel coverage (Lux Med), breakfast and lunch catering on office days, vacation allowance, career growth budget, home office setup budget, gym/fitness card, fertility healthcare support (Carrot), mental health support (Modern Health), group life insurance, and MacBooks with accessories.

Work Arrangement

This role is based in the Warsaw office with an office-centric hybrid schedule. Standard in-office days are Monday, Tuesday, and Thursday, with optional work-from-home on Wednesdays. Friday remote work depends on role and recruiter guidance.

Application

Apply via the provided link.

Skills & tags

What you can verify before applying

Compare the essentials before you leave: pay, remote scope, employment type, source, and the employer apply destination.